From ee3e94daae06be020bd83e3fbeddf33f24c0fe43 Mon Sep 17 00:00:00 2001 From: Robin Hahling Date: Tue, 10 Oct 2023 17:18:10 +0200 Subject: [PATCH 1/2] dependabot: run weekly instead of daily Signed-off-by: Robin Hahling --- .github/dependabot.yml | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 68f37c800..5a1a2bd82 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -3,7 +3,7 @@ updates: - package-ecosystem: 'npm' directory: '/' schedule: - interval: daily + interval: weekly open-pull-requests-limit: 5 rebase-strategy: "disabled" labels: @@ -13,7 +13,7 @@ updates: - package-ecosystem: gomod directory: ./backend schedule: - interval: daily + interval: weekly open-pull-requests-limit: 5 rebase-strategy: "disabled" ignore: @@ -29,7 +29,7 @@ updates: - package-ecosystem: github-actions directory: / schedule: - interval: daily + interval: weekly open-pull-requests-limit: 5 rebase-strategy: "disabled" labels: @@ -39,7 +39,7 @@ updates: - package-ecosystem: docker directory: / schedule: - interval: daily + interval: weekly commit-message: prefix: "docker:" open-pull-requests-limit: 5 @@ -51,7 +51,7 @@ updates: - package-ecosystem: docker directory: /backend schedule: - interval: daily + interval: weekly commit-message: prefix: "backend/docker:" open-pull-requests-limit: 5 From fc513e15998845dc5ae1a7929892a862eb63a280 Mon Sep 17 00:00:00 2001 From: Robin Hahling Date: Tue, 10 Oct 2023 17:22:38 +0200 Subject: [PATCH 2/2] dependabot: use grouped updates for Go and NPM dependencies Signed-off-by: Robin Hahling --- .github/dependabot.yml | 24 +++++++++++++++++------- 1 file changed, 17 insertions(+), 7 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 5a1a2bd82..0e9388fed 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -9,7 +9,11 @@ updates: labels: - kind/enhancement - release-note/misc - + groups: + dev-deps: + dependency-type: 'development' + prod-deps: + dependency-type: 'production' - package-ecosystem: gomod directory: ./backend schedule: @@ -19,13 +23,17 @@ updates: ignore: - dependency-name: "github.com/cilium/cilium" - dependency-name: "github.com/cilium/hubble" - # k8s dependencies will be updated manually all at once - - dependency-name: "k8s.io/*" - - dependency-name: "sigs.k8s.io/*" labels: - kind/enhancement - release-note/misc - + groups: + k8s-deps: + patterns: + - "k8s.io/*" + - "sigs.k8s.io/*" + all-go-deps: + patterns: + - '*' - package-ecosystem: github-actions directory: / schedule: @@ -35,7 +43,10 @@ updates: labels: - kind/enhancement - release-note/misc - + groups: + all-github-actions: + patterns: + - '*' - package-ecosystem: docker directory: / schedule: @@ -47,7 +58,6 @@ updates: labels: - ci/dependabot - kind/enhancement - - package-ecosystem: docker directory: /backend schedule: